Skip to main content

China security reports

Browse 1,909 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155885
Websites
130
Industries
113
Countries
52
Avg Score
Page 38 of 39|Showing 1851-1900 of 1909
greeyun.com favicon

珠海格力电器股份有限公司

greeyun.com

53
ManufacturingChinalargeMEDIUM

The website greeyun.com represents the corporate presence of Zhuhai Gree Electric Appliances Co., Ltd., a manufacturing company based in China. The site content is minimal, primarily consisting of the company name in Chinese and a government ICP备案 link, indicating compliance with Chinese internet regulations. The business appears to focus on manufacturing electrical appliances, but no detailed business descriptions, services, or contact information are provided on the site. The domain is registered with Alibaba Cloud Computing and is consistent with the hosting provider, supporting legitimacy. From a technical perspective, the website uses basic HTML and CSS without advanced frameworks or CMS. Hosting is provided by Alibaba Cloud, a reputable provider. The site lacks mobile optimization, accessibility features, and SEO best practices. Security headers are minimal, with only a Content-Security-Policy to upgrade insecure requests. DNSSEC is not enabled, and no advanced security measures are observed. There are no forms, scripts, or analytics tools detected, indicating a very basic technical infrastructure. Security posture is moderate but limited by the absence of comprehensive security headers and DNSSEC. The lack of privacy and cookie policies, as well as absence of contact information, reduces compliance with global privacy standards such as GDPR. No vulnerability disclosure or incident response information is present. The site content is safe with no adult or questionable material detected. Overall, the website is functional but minimal, with significant room for improvement in content richness, security, privacy compliance, and user engagement. Strategic recommendations include enhancing security headers, enabling DNSSEC, publishing privacy and cookie policies, adding contact information, and improving website content and design to better reflect the company's market position and build trust.

15
50
17
60
77
60
100
manufacturingchinaelectricalappliancescorporate
HTML5CSS
2025-07-12T20:50:09.862Z
ucbchina.com favicon

优时比贸易(上海)有限公司

ucbchina.com

63
HealthcareChinamediumMEDIUM

UCB China operates as the Chinese branch of the global biopharmaceutical company UCB S.A., focusing on innovative biologic treatments for rare diseases such as generalized myasthenia gravis. The website serves patients, healthcare professionals, and job seekers by providing detailed product information, corporate news, and recruitment opportunities. The company positions itself as a leader in precision medicine for rare neuromuscular diseases in China, leveraging global innovation and local expertise. Technically, the website is built on Drupal CMS with modern JavaScript usage and integrates Siteimprove Analytics for performance and user behavior tracking. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. However, some security headers are not explicitly present, and no public security or incident response policies are published. From a security perspective, the site enforces HTTPS and cookie consent mechanisms, ensuring basic user privacy and data protection compliance. No critical vulnerabilities or suspicious content were detected. The WHOIS data aligns well with the business claims, indicating a legitimate and consistent domain registration. Overall, the website demonstrates a solid security posture with room for improvement in transparency and advanced security controls. The risk assessment is low, with no signs of malicious activity or content safety concerns. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and improving privacy policy comprehensiveness to align with GDPR and other regulations.

65
53
2
60
67
75
100
pharmaceuticalhealthcarebiopharmachinaucb+2 more
JavaScriptDrupal CMSSiteimprove Analytics
2025-07-09T02:09:49.087Z
O

网必通-网必通app免费下载-网必通加速器官网

ok-robot.com

44
TechnologyChinasmallHIGH

The website ok-robot.com operates as a Chinese-language platform focused on providing downloads and information about network acceleration applications, primarily targeting users interested in VPNs and internet speed enhancement tools. The business model revolves around app promotion and download facilitation, with a niche market presence in the technology sector. The site content is basic, featuring app listings with minimal descriptive content and no evident business transparency or contact information. Technically, the site uses older JavaScript libraries such as jQuery 1.11.1 and Unslider for UI components, with Matomo analytics and Baidu link submission scripts for tracking and SEO. The site lacks modern security practices such as HTTPS enforcement and security headers, and no privacy or cookie policies are present, indicating low digital maturity and compliance. From a security perspective, the absence of HTTPS and security headers, combined with no visible privacy or incident response policies, presents a weak security posture. No forms or sensitive data collection points were detected, reducing immediate risk, but the lack of transparency and compliance documentation is a concern. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the site scores low on security and privacy compliance, with basic content quality and technical implementation. Strategic improvements in security, privacy policies, and business transparency are recommended to enhance trust and compliance.

15
50
2
60
-
80
100
networkaccelerationappdownloadchinesetechnologysoftware+2 more
jQuery 1.11.1UnsliderMatomo AnalyticsBaidu Link Submit+2
2025-07-02T04:02:01.204Z
F

加速器试用一天-爬墙专用加速器chrome-永久翻国外的浏览器

feiyijiasuqi.com

52
TechnologyChinasmallMEDIUM

The website feiyijiasuqi.com operates as a software download platform specializing in network acceleration tools and VPN-like services primarily targeting Chinese users seeking to access foreign internet content. The site offers multiple accelerator software options for Android and Apple platforms, emphasizing ease of use and free or trial-based access. The business model appears to rely on software promotion and possibly advertising revenue, with a small-scale operation founded around late 2022. Technically, the site is built on the ThinkPHP framework with jQuery 1.11.1 and Unslider for UI components. It uses Cloudflare DNS but lacks visible HTTPS enforcement and security headers, indicating moderate technical maturity with room for improvement in security and performance. The site is moderately optimized for mobile and SEO but lacks advanced accessibility features. From a security perspective, the absence of HTTPS enforcement, security headers, privacy and cookie policies, and contact information for incident response or data protection officers highlights significant compliance and security gaps. The use of Matomo analytics without cookie consent further indicates privacy compliance issues. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, the site scores moderately low on AI evaluation due to security and privacy shortcomings, basic content quality, and limited business credibility signals. Strategic improvements in security posture, privacy compliance, and transparency would enhance trust and user confidence.

15
50
2
60
65
70
100
vpn
jQuery 1.11.1UnsliderMatomo AnalyticsThinkPHP Framework+1
2025-07-02T02:51:31.767Z
A

加速器试用3小时-魔法加速器官网-永久不收费的加速器2023

acgpjiasuqi.com

52
TechnologyChinasmallMEDIUM

The website acgpjiasuqi.com operates as a Chinese-language platform offering free and trial software acceleration tools primarily targeting Android and Apple users. It provides downloads and recommendations for various network acceleration applications, focusing on enhancing internet and gaming experiences. The business model appears to rely on software distribution and possibly advertising or affiliate partnerships, with a market focus on Chinese internet users seeking network speed improvements. Technically, the site is built on the ThinkPHP framework with frontend technologies including jQuery 1.11.1 and Unslider for UI components. It uses Cloudflare DNS but lacks visible HTTPS enforcement and security headers, indicating a basic security posture. The site is moderately optimized for mobile devices and has basic SEO metadata but lacks advanced structured data or accessibility features. From a security perspective, the absence of HTTPS, security headers, and privacy policies presents significant risks. No contact or incident response information is provided, and no vulnerability disclosure or data protection officer details are found. The site uses Matomo analytics, indicating some user tracking but lacks privacy compliance mechanisms such as cookie consent banners. Overall, the website is functional but exhibits several security and compliance gaps that reduce trustworthiness and business credibility. Strategic improvements in security, privacy compliance, and transparency are recommended to enhance user trust and regulatory adherence.

15
50
2
60
65
70
100
vpn
jQuery 1.11.1UnsliderMatomo AnalyticsThinkPHP Framework+1
2025-07-02T02:50:41.301Z
gitee.com favicon

Alibaba Cloud Computing (Beijing) Co., Ltd.

gitee.com

53
TechnologyChinaenterpriseMEDIUM

Gitee is a leading Chinese enterprise-grade DevOps platform providing comprehensive solutions for code hosting, project management, documentation collaboration, testing, continuous integration, and performance metrics. It targets enterprises and development teams in China, offering SaaS and private deployment options to enhance software development efficiency and quality. The platform is backed by Alibaba Cloud Computing (Beijing) Co., Ltd., reflecting a strong market presence and technical infrastructure. Technically, the website leverages modern web technologies including React and Next.js frameworks, with Ant Design UI components. Hosting is provided by Alibaba Cloud, ensuring reliable infrastructure. The site is mobile-optimized and SEO-friendly, though performance is moderate. Analytics usage includes Baidu Analytics for user tracking. From a security perspective, HTTPS is enabled with good SSL configuration, but the absence of security headers and privacy/cookie policies indicates room for improvement in security best practices and compliance. No blocking or WAF mechanisms were detected, and no vulnerabilities were apparent in the provided content. Overall, Gitee demonstrates a mature business and technical posture with high trustworthiness and professional presentation. However, enhancing privacy compliance and security headers would strengthen its security posture and regulatory adherence.

50
50
2
65
67
70
40
devopscodehostingprojectmanagementcontinuousintegrationaicollaboration+2 more
React (implied by _next/static chunks)Ant Design (ant- classes and components)JavaScriptCSS+1
2025-07-01T17:38:26.774Z
chintglobal.com favicon

CHINT

chintglobal.com

58
EnergyChinaenterpriseMEDIUM

CHINT is a well-established global enterprise specializing in smart energy solutions, with a comprehensive product portfolio spanning low voltage equipment, power transmission and distribution, EV charging, and industry-specific solutions. Founded in 1984 and headquartered in China, CHINT positions itself as a leader in the energy sector, targeting industrial clients, utilities, OEMs, and commercial enterprises worldwide. The website reflects a mature digital presence with structured data, multilingual support, and extensive product and solution information. Technically, the website leverages Adobe Experience Manager as its CMS, integrates modern marketing and analytics tools such as Google Tag Manager, Marketo, and LinkedIn Insight, and employs a consent management platform to ensure privacy compliance. The site is mobile-optimized with good SEO practices, though accessibility features could be enhanced. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses secure forms integrated with Marketo. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident, representing an area for improvement. No vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are present and comprehensive, indicating good compliance with GDPR and related regulations. Overall, the website is professional, trustworthy, and business-credible, though the lack of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy. Strategic recommendations include enhancing security headers, improving accessibility, and maintaining rigorous third-party script audits to sustain security and compliance.

45
53
2
60
67
60
100
energysmartenergysolutionsindustrialproductslowvoltagepowertransmission+3 more
JavaScriptjQueryGoogle Tag ManagerMarketo Munchkin+2

Partner Domains:

en.chint.com
partner
chint.com
partner
2025-06-27T16:34:44.525Z
ipbexpo.com favicon

NürnbergMesse China Co., Ltd.

ipbexpo.com

43
ManufacturingChinamediumHIGH

The IPB Expo website represents a well-established exhibition platform focused on powder, bulk solids, and fluid processing industries in China. Jointly organized by NürnbergMesse China and the Chinese Society of Particuology, it serves as a leading one-stop purchasing and networking platform for exhibitors and trade visitors across multiple industrial sectors including chemicals, energy, pharmaceuticals, and food. The website provides comprehensive information about the event, exhibitors, product ranges, and related conferences, reflecting a mature business model with a strong market position in China. Technically, the website is built on modern frameworks such as Next.js and React, with integration of Swiper.js for UI components and Baidu Analytics for tracking. Hosting is provided by Alibaba Cloud, consistent with the domain registration data. The site is mobile optimized and offers a good user experience, though some SEO and accessibility features could be improved. Performance is moderate, with deferred loading of scripts and optimized images. From a security perspective, the site uses HTTPS but lacks advanced security headers and DNSSEC is not enabled. There is no visible privacy policy, cookie consent mechanism, or incident response information, which are gaps in compliance and security posture. The WHOIS data confirms the domain is legitimate, long-standing, and consistent with the business claims, enhancing trustworthiness. Overall, the website is professional and credible but would benefit from enhanced privacy compliance, security hardening, and transparency regarding data protection and incident response to improve trust and regulatory adherence.

20
50
17
60
67
60
-
exhibitionpowderprocessingbulksolidsfluidprocessingtradefair+3 more
React (Next.js)Swiper.jsBaidu Analytics
2025-06-27T13:14:52.775Z
广

广州标际包装设备

vmsplay.com

40
ManufacturingChinamediumHIGH

The website www.vmsplay.com represents a Chinese company specializing in packaging testing instruments and equipment, founded in 2002. The company offers a range of products including oxygen permeability testers, water vapor transmission testers, and biodegradation testing devices. It holds certifications such as ISO9001:2008 and CNAS accreditation, positioning itself as a significant player in the packaging manufacturing and testing sector in China. The website content is primarily in Chinese and targets packaging industry professionals and research institutions. Technically, the website uses legacy technologies like jQuery 1.4.2 and loads multiple external scripts, some over insecure HTTP connections, which poses security risks. The site lacks modern security headers and does not provide privacy or cookie policies, indicating poor privacy compliance. Contact information is present but no company email addresses are found. The domain WHOIS data is missing, which raises concerns about domain legitimacy and registration status. From a security perspective, the site has moderate security posture but suffers from mixed content issues and lacks essential security headers. No WAF or blocking mechanisms are detected, allowing full content access. The absence of privacy policies and unclear domain registration status are notable vulnerabilities. Overall, the site is functional but requires significant improvements in security and compliance to enhance trustworthiness. Strategically, the company should prioritize securing its domain registration, implementing HTTPS fully, adding privacy and cookie policies, and updating its technology stack to modern standards. These steps will improve both user trust and regulatory compliance.

15
50
2
30
-
65
100
packagingtestingequipmentbiodegradabletestingoxygenpermeabilitywatervaportransmission+1 more
jQuery 1.4.2JavaScriptHTML5CSS

Partner Domains:

www.86pla.com
partner
2025-06-27T12:56:17.219Z

开云手机web版登录入口-开云(中国)

cityntel.com

41
EnergyChinasmallHIGH

The website cityntel.com represents a small Chinese company specializing in the rental, leasing, sales, and recycling of diesel generators ranging from 30KW to 2000KW, focusing on imported brands such as Cummins, Mitsubishi, and Caterpillar. The target audience includes infrastructure sectors such as railway, transportation, municipal engineering, real estate, factories, hotels, and construction sites. The business model is primarily service-oriented, providing equipment solutions tailored to client needs. The website content is primarily in Simplified Chinese and provides product listings, case studies, team introductions, and news updates related to diesel generators. Technically, the website is built on the EmpireCMS platform, utilizing standard web technologies including HTML5, CSS, JavaScript, and libraries such as Blazy for lazy loading and WOW.js for animations. The site has basic mobile optimization and moderate performance but lacks advanced SEO and accessibility features. There is no evidence of modern frameworks or advanced hosting details. The WHOIS data shows inconsistencies, including a domain creation date in the future and minimal registrant information, which raises legitimacy concerns. From a security perspective, the website lacks critical security headers, DNSSEC is not enabled, and there is no visible HTTPS enforcement information. Privacy and cookie policies are absent, and no incident response or vulnerability disclosure information is provided. These gaps indicate a low security maturity level and potential compliance issues with data protection regulations such as GDPR. Overall, the website presents a functional but basic online presence for a niche diesel generator rental business. The main risks relate to domain legitimacy concerns and insufficient security and privacy practices. Strategic improvements in security posture, compliance documentation, and WHOIS transparency are recommended to enhance trust and reduce operational risks.

15
50
2
60
62
70
20
HTML5CSSJavaScriptBlazy (lazy loading)+2
2025-06-25T17:07:51.571Z
bechstein-china.com favicon

Shanghai Meicheng Technology Information Development Co., Ltd.

bechstein-china.com

46
ManufacturingChinamediumHIGH

The website bechstein-china.com represents a Chinese regional presence for the German piano manufacturer Bechstein, operated under Shanghai Meicheng Technology Information Development Co., Ltd. The site targets Chinese-speaking piano enthusiasts and professionals, offering detailed product information, brand history, and service support. The business model focuses on manufacturing and retail of high-end pianos, supported by an international network and localized services. Technically, the site uses a custom CMS with standard web technologies including HTML5, CSS3, JavaScript, and jQuery, and integrates Swiper.js for interactive content. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. Security posture is adequate with HTTPS enabled and no obvious vulnerabilities, though it lacks advanced DNS security and security headers. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism or GDPR-specific indicators. Overall, the domain registration is consistent and trustworthy, supporting the legitimacy of the business. Recommendations include enhancing privacy compliance, adding security headers, and publishing a security policy to improve trust and regulatory adherence.

20
50
17
70
62
75
-
HTML5CSS3JavaScriptjQuery+1

Partner Domains:

bechsteinbeijing.com
partner
mall.jd.com
partner

+1 more partners

2025-06-25T11:43:17.986Z
Y

yl23455永利

filetactics.com

40
EducationChinamediumHIGH

The website 'yl23455永利(CHINA)有限公司官网' presents itself as an educational and cultural media platform with a focus on online entertainment and academic news. It targets a Chinese-speaking audience interested in cultural, educational, and entertainment content. The business model appears to revolve around online entertainment services and cultural media collaborations, positioning itself as a leader in the domestic wireless value-added services sector. However, the website lacks transparent business registration details and verifiable contact information, which impacts its credibility. Technically, the site is built using Visual SiteBuilder 9 CMS with a traditional HTML, CSS, and JavaScript stack. It includes multiple third-party scripts for analytics and tracking, notably from 51.la and Baidu domains. The site lacks HTTPS, which is a significant security and trust concern. Mobile optimization is poor, and SEO and accessibility features are basic. The site uses some JavaScript libraries but does not employ modern frameworks or advanced performance optimizations. From a security perspective, the absence of HTTPS and security headers, combined with the use of multiple external scripts without integrity checks, exposes the site to potential risks. There is no visible privacy policy, cookie consent mechanism, or incident response information, indicating low privacy compliance and security maturity. The WHOIS data is privacy protected, which reduces transparency and trustworthiness. Overall, the website scores low to moderate on content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic improvements in security (HTTPS, headers), privacy policies, and transparent contact information are critical to enhance trust and compliance.

-
25
-
60
-
85
100
educationchineseonlineentertainmentculturalmedianews+1 more
JavaScriptHTML5CSSBase64 encoding+1
2025-06-21T18:22:02.485Z

贵港市用工网

chemistryrecruitment.com

42
ManufacturingChinamediumHIGH

贵港市用工网 is a specialized recruitment platform focused on the advanced manufacturing sector in China, connecting top manufacturing enterprises with elite talent. The website emphasizes intelligent manufacturing, industrial internet, and smart equipment as core technology areas. It offers services such as job search, job posting, skill assessment, career planning, and resume optimization. The platform targets manufacturing companies and professionals seeking opportunities in this sector, positioning itself as a professional and sizable player with a large number of cooperating enterprises, job listings, and registered talents. Technically, the website uses modern HTML5 and CSS3 with advanced styling including CSS variables and animations. The design is visually appealing and moderately optimized for mobile devices, though accessibility and SEO optimizations are basic. There is no evidence of a CMS or advanced frameworks. Performance is moderate with no detected external scripts or analytics tools. From a security perspective, the site lacks HTTPS enforcement (only HTTP URL provided), no security headers are detected, and no incident response or security policy information is available. Privacy compliance is minimal with a privacy policy present but no cookie consent mechanism. No contact emails or phone numbers are provided, limiting direct communication channels. These factors reduce the overall security posture and privacy compliance of the site. Overall, the site is functional and professional in content and design but requires significant improvements in security, privacy compliance, and contact transparency to enhance trust and protect users. Implementing HTTPS, security headers, cookie consent, and providing clear contact information would substantially improve the platform's credibility and security standing.

15
25
-
60
-
70
100
HTML5CSS3CSS VariablesCSS Animations
2025-06-21T18:21:57.675Z
jd.hk favicon

京东全球购

jd.hk

38
E-commerceChinalargeHIGH

JD.hk operates as a major e-commerce platform specializing in cross-border and overseas shopping, targeting Chinese-speaking consumers interested in authentic global products. The platform offers a wide range of categories including mother and baby products, beauty, electronics, and luxury goods, supported by partnerships with well-known brands and stores such as Walmart and Rakuten. The website demonstrates a consistent brand presence aligned with JD.com's ecosystem, leveraging advanced front-end technologies and multiple JD.com subdomains for content delivery and user interaction. Technically, the site uses a modern JavaScript stack including jQuery, Sea.js, and JD's proprietary JMFE framework, but suffers from critical security shortcomings such as the absence of a valid SSL certificate and lack of modern TLS protocol support. Performance metrics are incomplete, and mobile optimization is basic with a redirect to a mobile subdomain. SEO and content quality are good, with clear navigation and rich product listings. From a security perspective, the lack of HTTPS and TLS support is a significant risk, exposing users to potential data interception. Security headers are minimal, and no incident response or vulnerability disclosure policies are evident. Privacy compliance is weak, with no cookie policy or consent mechanism detected, raising concerns about GDPR and other regulatory adherence. Overall, while JD.hk is a professionally designed and content-rich e-commerce platform with strong business credibility, its security posture and privacy compliance require urgent improvement to protect user data and maintain trust. Strategic recommendations include immediate SSL certificate deployment, enhanced security configurations, and implementation of comprehensive privacy policies.

25
40
17
50
-
50
100
e-commerceretailcross-bordershoppingchinesemarketjdcom
jQueryarttemplateSea.jsCryptoJS+5

Partner Domains:

jd.com
partnerpending
2025-06-16T16:20:17.557Z
asfaa.org favicon

ASIAN SPORT FOR ALL ASSOCIATION

asfaa.org

32
OtherChinasmallHIGH

ASFAA (Asian Sport For All Association) is a regional non-profit organization dedicated to promoting sport for all across Asia. The website serves as an information hub for news, events, programs, and publications related to ASFAA's activities. It targets sports organizations, members, and the Asian sports community, positioning itself as a key regional player affiliated with international bodies such as TAFISA. The business model focuses on community engagement and event organization rather than commercial activities. Technically, the website uses a basic technology stack including jQuery and Google Analytics, with no modern CMS or advanced frameworks detected. Performance is moderate to slow, with basic mobile optimization and accessibility. The site lacks HTTPS, which is a critical security deficiency, and no advanced security headers or policies are implemented. Privacy compliance is poor, with no visible privacy or cookie policies. From a security perspective, the absence of SSL/TLS encryption exposes visitors to risks such as data interception. The lack of security headers and email authentication records further weakens the security posture. No incident response or vulnerability disclosure mechanisms are evident. Overall, the site demonstrates a low security maturity level. The overall risk assessment indicates that while the site is functional and provides relevant content, the lack of HTTPS and privacy compliance are critical issues that must be addressed to improve trust and security. Strategic recommendations include immediate SSL implementation, adoption of privacy policies, and enhancement of security configurations to protect users and improve compliance.

15
25
17
50
75
75
-
sportsassociationasianon-profitevents+1 more
jQuery 3.6.3Google Analytics (ga.js)CSS boilerplatejquery.cookie.js+1
2025-06-15T09:12:09.326Z